CVE-2024-37865: s3browser s3 Browser

Medium severity, CVSS 5.9. EPSS: 0.7% chance of exploitation in the next 30 days.

An issue in S3Browser v.11.4.5 and v.10.9.9 and fixed in v.11.5.7 allows a remote attacker to obtain sensitive information via the S3 compatible storage component.

Affected products

  • s3browser s3 Browser: before 11.7.5 (fixed in 11.7.5)

Published 2024-07-09. Last modified 2026-06-17.